tiki-sbvr[.]com
“TikTok Shop”
Résumé des preuves
Analysis of the domain tiki-sbvr.com indicates it was actively impersonating TikTok, specifically targeting users of TikTok Shop. The domain was registered on November 3, 2025, through Dynadot LLC and resolved to the IP address 104.233.194.10, hosted on AS54600 (PEG TECH INC) in the United States. No SSL certificate was present, increasing the risk of data interception during transmission. The page title explicitly displayed 'TikTok Shop,' confirming the intent to mimic the official TikTok e-commerce platform. Infrastructure checks reveal the domain appeared on at least one security blocklist, and AlienVault OTX included it in two threat intelligence pulses, suggesting prior malicious activity.
Gridinsoft assigned a trust score of 0/100, further supporting its classification as high-risk. While VirusTotal reported 15 detections out of 95 security vendors, this alone does not confirm the exact nature of the threat but aligns with broader malicious indicators. The domain was taken offline by July 23, 2026, though defenders should remain cautious of re-emergence under similar infrastructure or registration patterns. Nameservers (ns1.dyna-ns.net, ns2.dyna-ns.net) and the hosting provider (PEG TECH INC) are consistent with known phishing infrastructure.
The absence of an SSL certificate and the domain's presence on blocklists like PhishDestroy reinforce its fraudulent purpose. Defenders are advised to monitor for related domains using the same registrar, nameservers, or IP range, as threat actors often reuse infrastructure. No evidence links this domain to a specific phishing kit or additional scam tactics beyond brand impersonation. The exact content and functionality of the site remain unanalyzed, but the available data confirms its role in a TikTok Shop impersonation scheme.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif